pkg:Debian/rust-astral-tokio-tar

3 total CVEsHIGH1MEDIUM1

✅ Check your installed version

All known vulnerabilities

  • HIGH8.1CVE-2025-62518`tokio-tar` parses PAX extended headers incorrectly, allows file smuggling
    from 0
  • MEDIUM5.3CVE-2026-32766astral-tokio-tar insufficiently validates PAX extensions during extraction
    from 0
  • CVE-2025-59825astral-tokio-tar has a path traversal in tar extraction
    from 0